Iran Nuclear Talks Spyware Masqueraded Under Foxconn Name: Kaspersky Lab

Advertisement
By Reuters | Updated: 16 June 2015 09:55 IST
Further research into the sophisticated computer virus used to hack into hotels where the Iran nuclear talks took place has found it took advantage of digital credentials stolen from the world's top contract electronics maker Foxconn.

Russian security company Kaspersky Lab said on Monday that researchers learned the Duqu 2.0 virus had redirected computer traffic by using a legitimate digital certificate from Taiwan's Hon Hai, also known as Foxconn.

Foxconn customers have included many of the world's biggest electronic makers, including Apple, Blackberry, Google, Huawei and Microsoft.

Kaspersky revealed its initial findings in a report last week in which it said it found the virus in conferencing equipment at three European hotels used in talks involving Iran and six world powers, among other targets.

Advertisement

Digital certificates are the credentials which identify legitimate computers on a network. They act as the basis of e-commerce and other largely automated transactions on the Web.

Advertisement

In recent years, cyberspies have begun to exploit stolen certificates to trick machines into thinking malicious software comes from legitimate computers, an escalation posing a grave threat to business done over the Internet, security experts say.

Targeted attacks
The "P5+1" group of six world powers have been negotiating with Iran on curbs to its disputed nuclear programme - the United States, Russia, China, Britain, France and Germany.

Advertisement

The on-again, off-again series of talks to reach a comprehensive nuclear deal with Iran have been held in Geneva, Lausanne, Montreux, Munich and Vienna since last year.

Both Moscow-based Kaspersky and U.S. security company Symantec Corp said the virus shared some programming with previously discovered espionage software called Duqu, which security experts believe to have been developed by Israelis.

Advertisement

Israel, which has strongly opposed the powers' diplomatic opening to its arch-enemy Iran, denied any connection with the virus. In February, the United States accused Israel of using selective leaks from the talks to distort the U.S. position.

The West suspects Iran wants to develop a nuclear weapons capability from its enrichment of uranium. Iran says it wants nuclear energy only for electricity and medical isotopes.

Symantec and Kaspersky analysts have said there was overlap between Duqu and Stuxnet, a U.S.-Israeli project that sabotaged Iran's nuclear programme in 2009-10 by destroying a thousand or more centrifuges that were enriching uranium.

The Stuxnet virus took advantage of stolen digital certificates from two other major Taiwanese companies, JMicron Technology Corp and Realtek Semiconductor Corp, Kaspersky said in a report it published in 2010.

"Duqu attackers are the only ones who have access to these certificates, which strengthens the theory they hacked the hardware manufacturers in order to get these certificates," Kaspersky said in a summary of its report on Monday.

Kaspersky said it had notified Foxconn of the stolen credentials. Foxconn was not immediately available to comment on steps it has taken to secure its systems.

Last week, Kaspersky said Duqu 2.0 had evolved from the earlier Duqu, which had been deployed against unidentified targets for years before it was discovered in 2011.

It said Duqu 2.0 used three previously unknown flaws in Microsoft Corp software to infect machines, for which the software giant subsequently released patches to fix. The attack left almost no traces.

© Thomson Reuters 2015

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Airtel-Perplexity Free Offer Now Requires a Card to Continue
  2. Oppo Reno 15 Pro Mini Confirmed to Launch in India Alongside These Models
  3. OnePlus Pad Go 2 Review
  4. iQOO Z11 Turbo Design Teased; Specifications Leaked
  5. OnePlus Reportedly Developing New Smartphone for India, Global Markets
  6. Oppo Reno 15 Series 5G Confirmed to Launch in India Soon
  7. Asus VM670KA AiO All-in-One Desktop PC With 27-Inch Display Launched in India
  8. Huawei Nova 15 Series With Kirin Chips, Up To 6,500mAh Batteries Launched
  9. Xiaomi 17 Ultra to Launch in a 'Starry' Green Shade in China on This Date
  10. Steam Winter Sale: Best Deals Under Rs. 500 and More
  1. Blue Origin Launches First Wheelchair User to Space and Back
  2. Planet-Eating Stars Offer a Glimpse Into Earth’s Fate as the Sun Nears Its Final Stages
  3. New Ionic Liquid Breaks Stability Barrier for Perovskite Solar Cells
  4. Yann LeCun Sets Up Advanced Machine Intelligence AI Startup After Announcing Departure From Meta
  5. Nayanam Now Available For Streaming Online: What You Need to Know About This Psychological Thriller Online
  6. Kaya-Chan Isn’t Scary OTT Release Details: Know Where to Watch This Anime Horror-Comedy Series Online
  7. Samsung Galaxy S25 Series Gets One UI 8.5 Beta 2 Update in India With New Improvements, Bug Fixes
  8. Oppo Pad Air 5 Display, Battery Upgrades Confirmed Ahead of December 25 Launch in China
  9. OpenAI Upgrades ChatGPT With Adjustable Personality Traits, Response Styles
  10. Huawei Nova 15 Ultra Launched With 6,500mAh Battery, Kirin 9010S Chip, Nova 15 Pro, Nova 15 Tag Along: Price, Features
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.